Recently, on Hacker News front page, there was a post mentioning a new vulnerability that seems to affect Intel processors. The post is mostly speculation and there is no PoC or an exploit that I'm aware of. While the article is unclear to me, it seems to suggest that the vulnerability is serious, for many reasons (quick patching of Windows NT and Linux, major cloud vendors involved, etc). What is actually known about the problem? Is there a source better than the URL I linked to that could show more relevant information?

Judging by these linked resources, it's 1) related to speculative execution, 2) does not affect AMD processors, 3) is mitigated by page table splitting, and 4) requires fixing the hardware for a complete fix. It seems that it's either a nasty side-channel attack for determining the location of the kernel base address (likely, and not a really big deal), a method of breaking out of or violating integrity/confidentiality guarantees of VMs (also very possible), or allowing arbitrary memory reads via speculative execution (unlikely, but of truly apocalyptic impact if true).
– forestJan 3 '18 at 3:09

1

The vulnerability appears to be embargoed at this time, so it's unlikely you'll find much information beyond speculation and the patches.
– DavidJan 3 '18 at 4:30